Bank of India's Website Compromised

digg this!| | Comments (0) | TrackBacks (0)

Courtesy the F-Secure blog they show a case where the Bank of India website was compromised to include malicious iframes, one of which

"...contains an obfuscated JavaScript that uses exploits to download and run a file called loader.exe. This file is a small downloader which downloads additional files that are different password stealing trojans, additional downloaders, et cetera."

The stupid thing about this is that if the attackers had quietly compromised this site and done some intelligent money transfers, or web-based password capture, this may have gone unnoticed for some time.  But they took their compromise and used it to hammer user's PCs with known malware that I'm sure got Antivirus programs alarming.  Not too subtle.

Good case for SSL-encrypted pages and not clicking "okay" to the "allow unencrypted content to load in encrypted pages?" dialog boxes in the browser...  Also good case for using a browser other than IE6.

Bank of India's Website Compromised - F-Secure Weblog : News from the Lab

0 TrackBacks

Listed below are links to blogs that reference this entry: Bank of India's Website Compromised.

TrackBack URL for this entry: http://juxtaposition.axley.net/blog-bin/mt-tb.cgi/712

Leave a comment

March 2011

Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30 31    

«« December 2010

Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30 31    

Archives

Contact: Jason Axley

Search Amazon:

Amazon Logo
Powered by Movable Type 4.1